Richard Neal, an employee of Aviva used to carry out the cyber attack on the company as revenge after falling out with colleagues.
He created a fake identity within his former company's system and used it to reject expenses claims from his erstwhile colleagues.
He also hacked into Esselar's Twitter account and replaced its logo with a bleeding heart - a calling card meant to make it clear that its security had been compromised.
The attack caused Essela to lose around £528,000 deal with Aviva.
Source: https://www.bbc.com/news/technology-34052408
TPRM report: https://scoringcyber.rankiteo.com/company/aviva-plc
"id": "avi223823422",
"linkid": "aviva-plc",
"type": "Cyber Attack",
"date": "05/2014",
"severity": "90",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Insurance',
'name': 'Aviva',
'type': 'Company'},
{'name': 'Esselar', 'type': 'Company'}],
'attack_vector': ['Phishing', 'Social Engineering'],
'description': 'Richard Neal, an employee of Aviva, carried out a cyber '
'attack on the company as revenge after falling out with '
'colleagues. He created a fake identity within his former '
"company's system and used it to reject expenses claims from "
"his erstwhile colleagues. He also hacked into Esselar's "
'Twitter account and replaced its logo with a bleeding heart, '
'a calling card meant to make it clear that its security had '
'been compromised. The attack caused Esselar to lose around '
'£528,000 deal with Aviva.',
'impact': {'brand_reputation_impact': 'Medium',
'financial_loss': '£528,000',
'systems_affected': ['Expense claims system', 'Twitter account']},
'motivation': 'Revenge',
'threat_actor': 'Richard Neal',
'title': 'Insider Cyber Attack on Aviva and Esselar',
'type': 'Insider Threat'}